Cross-Site Scripting Vulnerability in Joomla! Module Chromes
CVE-2024-40747

Currently unrated

Key Information:

Vendor
Joomla
Vendor
CVE Published:
7 January 2025

Summary

A security vulnerability within Joomla!'s module chromes allows for improper input processing, which may expose users to Cross-Site Scripting (XSS) attacks. By failing to sanitize input correctly, malicious actors can exploit this flaw to inject arbitrary scripts into web pages viewed by users. This could lead to unauthorized access to sensitive information or allow attackers to perform actions on behalf of authenticated users.

References

Timeline

  • Vulnerability published

.